Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qf87-5pvc-2j29

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

HP Operations Dashboard has a default password of j2deployer for the j2deployer account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager servlet in the Tomcat servlet container. NOTE: this might overlap CVE-2009-3098.

HP Operations Dashboard has a default password of j2deployer for the j2deployer account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager servlet in the Tomcat servlet container. NOTE: this might overlap CVE-2009-3098.

EPSS

Процентиль: 99%
0.85992
Высокий

Связанные уязвимости

nvd
около 16 лет назад

HP Operations Dashboard has a default password of j2deployer for the j2deployer account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager servlet in the Tomcat servlet container. NOTE: this might overlap CVE-2009-3098.

EPSS

Процентиль: 99%
0.85992
Высокий